Industrial Security Reimagined: MSOC with Brains, Not Just Alarms

Most industrial networks aren't taken down by ransomware. They fall because no one's watching the protocols that matter-the ENIP chatter between PLCs, the CIP commands altering logic, the silent changes that don't set off antivirus, but still shut down production. That's why Critical Path Security built its Managed Security Operations Center (MSOC) offering around one principle: You can't defend what you can't see. And now, powered by the Léargas Security platform, our MSOC provides not just visibility-but AI-enriched analytics, real-time behavioral monitoring, and a purpose-built MDR stack designed specifically for OT and ICS environments. Real Detection in the Field: AI + ACID in Action Last week, our team caught what others missed. During our real-time analysis of a mid-sized manufacturing client, our MSOC detected an unauthorized CIP Write Request (0x4D)-a command type typically reserved for changes to programmable logic. Detection wasn't luck. It was a combination of three key layers:…

0 Comments

Nation-State-Linked Cyberattack Breaches ConnectWise ScreenConnect Instances

Executive Summary On May 29, 2025, ConnectWise publicly disclosed a cybersecurity breach targeting its ScreenConnect remote access platform. The attack, attributed to a sophisticated nation-state threat actor, compromised a limited number of customer environments. ConnectWise has since engaged cybersecurity firm Mandiant, implemented network hardening, and has not observed further suspicious activity. This incident underscores the persistent targeting of Managed Service Providers (MSPs) and their tools by advanced adversaries, with potential implications across multiple customer environments and critical infrastructure sectors. Incident Overview Impacted Organization:ConnectWise, a provider of IT management and remote access tools, including ScreenConnect. Date of Disclosure:May 29, 2025 Type of Incident:Cyberattack linked to a nation-state threat actor Impacted System:Cloud-hosted instances of ScreenConnect Discovery:The breach was discovered internally by ConnectWise, prompting an immediate investigation in collaboration with Mandiant. Technical Details Suspected Attack Vector:While ConnectWise has not confirmed the exploit used, the security community has pointed to the possible use of…

0 Comments

Why an MSOC Isn’t Optional Anymore: Executive Guidance for Modern Security

Collecting logs isn't security. And having a tool doesn't mean you're protected. What matters is what you do with that information-and how fast you act on it. The Implementing SIEM and SOAR Platforms: Executive Guidance makes it clear: visibility without intelligence is noise. Automation without expertise is dangerous. SIEM and SOAR systems only provide value when they're properly implemented, expertly tuned, and continuously managed. That's where Critical Path Security's Managed Security Operations Center (MSOC) steps in-powered by our AI-driven enrichment engine and the Léargas XDR platform. What Our MSOC Does Differently 24/7 Threat MonitoringWe continuously monitor your systems using battle-tested detection logic and threat intelligence-so you don't miss critical alerts while your team sleeps. AI-Powered Enrichment with MCP ServersOur Multi-modal Command Processor (MCP) servers provide deep enrichment, cross-log correlation, and narrative-driven alerting, which dramatically reduce investigation time and analyst fatigue. Integrated Léargas XDRWith Léargas XDR, visibility spans across endpoints, identities,…

0 Comments

Inside the Race: Ryan Vargas Talks CTMP, Team Progress, and the Road Ahead

In our latest interview with Ryan Vargas, we got a firsthand look at what's fuelling his drive this season-upcoming races, continued team growth, and the strong foundation built through our ongoing partnership with Critical Path Security. All Eyes on Chicago and Canada Ryan shared his excitement about the next stops on the schedule: Chicago and Canada. With travel plans in motion and preparations underway, the team is dialed in for what promises to be a high-stakes stretch of the season. These events offer not just track time, but the chance to go head-to-head with some of the best in the business. A Dream Realized at CTMP One standout on the calendar? Canadian Tire Motorsport Park (CTMP). For Ryan, this race carries personal significance. "CTMP has always been on my bucket list," he told us. "To finally get the chance to race there is huge-it's something I've looked forward to for…

0 Comments